VirtualAlllocEx / Create_Thread_Inline_Assembly_x86
This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly
☆17Updated last year
Related projects ⓘ
Alternatives and complementary repositories for Create_Thread_Inline_Assembly_x86
- Example of using Sleep to create better named pipes.☆41Updated last year
- Dump Teams conversations☆17Updated 3 years ago
- C# project to Reflectively load .Net assemblies in memory☆17Updated 5 months ago
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago
- Extension functionality for the NightHawk operator client☆26Updated last year
- The Totally Legit Authentication Dialog☆12Updated last year
- All my POC related to malware development☆11Updated 6 months ago
- Bypassing Amsi using LdrLoadDll☆24Updated last month
- ☆22Updated 6 months ago
- A BOF for enumerating version information for DLLs associated for a Beacon process.☆12Updated 2 years ago
- ☆24Updated 2 years ago
- ☆45Updated 3 years ago
- Cobalt Strike notifications via NTFY.☆13Updated last month
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆15Updated 6 months ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆22Updated 2 years ago
- Windows x64 Process Injection via Ghostwriting with Dynamic Configuration☆27Updated 3 years ago
- in-process powershell runner for BRC4☆37Updated last year
- Utility to analyse, ingest and push out credentials from common data sources during an internal penetration test.☆19Updated 2 years ago
- A C# Tool to find left over pentest data for use in your pentest or redteam op. Blue could maybe use to find files to cleanup☆34Updated last year
- ☆29Updated 2 years ago
- Extension functionality for the NightHawk operator client☆26Updated last year
- Remove API hooks from a Beacon process.☆12Updated 3 years ago
- ☆20Updated last year
- BadExclusions is a tool to identify folder custom or undocumented exclusions on AV/EDR☆18Updated 9 months ago
- Hooked create process injection for meterpreter☆23Updated 3 years ago
- .NET port of Leron Gray's azbelt tool.☆26Updated last year
- Beacon Object File implementation of Yaxser's Backstab☆14Updated 2 years ago
- SharpReg is a simple code set to interact with the Remote Registry service api and is compatible with Cobalt Strike.☆26Updated 4 years ago